From: cpebenito@tresys.com (Christopher J. PeBenito) Date: Wed, 27 Apr 2011 14:36:00 -0400 Subject: [refpolicy] Refpolicy status Message-ID: <4DB86210.40609@tresys.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com Since the list has been quiet lately, I have been looking through the Fedora git repo for things to upstream. Please let me know if there are particular things that you think should be upstreamed. Known things that are still contentious: * user_type attributes * admin home dir type * "leaks" interfaces * inherited permission sets/interfaces * systemd -- I believe this is too different from traditional init_t and warrants its own full policy * unconfined/unconfineduser module split design Known unacceptable things: * unlabelednet module and corenet_enable_unlabeled_packets() -- Chris PeBenito Tresys Technology, LLC www.tresys.com | oss.tresys.com